PT-2005-4563 · Orca · Orca Forum
Published
2005-11-26
·
Updated
2011-03-08
·
CVE-2005-3815
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Orca Forum versions 4.3b and earlier
Description
A SQL injection issue allows remote attackers to execute arbitrary SQL commands. The issue is related to the
msg parameter in the "forum.php" file.Recommendations
For Orca Forum versions 4.3b and earlier, update to a version later than 4.3b to resolve the issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Orca Forum